What’s New in this Version

New Feature

Description

Policy Editor

The new version of the Policy Editor arranges configurable properties in a folder tree, letting you sort, group, and browse through global settings, vulnerability checks, services, and accounts that you can enable for your policy. The folder tree settings include:

You can arrange the Policy Editor’s folder tree in four different views:

The Policy Editor also contains a browser-enabled window used for:

  • viewing information on each vulnerability check, such as the vulnerability’s description, the platforms affected by the vulnerability, the vulnerability’s risk level, the vulnerability’s remedy information, and additional reference information,

  • accessing external Web sites that may contain additional fix information, patches, or updates, and

  • linking you directly to the X-Force Knowledge Base.

This version of the Policy Editor replaces the tabbed Configuration dialog box that was used in Internet Scanner 5.x.

X-Press Updates™

X-Press Updates automatically update your system with the latest plug-in checks and the latest product updates available for Internet Scanner, without having to download and to re-install a new version of Internet Scanner.

X-Press Updates are available from a secure server on the ISS Web site, and can be installed on your system automatically via the Web using the X-Press Updates install program. Or, you can download the X-Press Updates from the ISS Web site using the X-Press Updates install program to your local directory or to a network share and then choose from either of those locations which updates you would like to install on your system.

For information on how to install X-Press Updates, view the X-Press Updates help file (XPressUpdate.chm) in the <Internet Scanner install directory>/Scanner6/XPressUpdate.

Subscribe to the X-Press Update Mailing Lists!—The X-Press Updates Mailing Lists at xpress@iss.net or xpress-binary@iss.net are e-mail forums, which provide information on X-Press Updates and automatically e-mail you when there are new X-Press Updates that you can install on your system.

Database Scanner Integration

Internet Scanner combines functions of Database Scanner to discover new database servers (Microsoft SQL Server, Oracle, or Sybase Adaptive Server) that have been deployed in your organization, and to assess the risk associated with those servers.

Internet Scanner 5.3 to 6.0 Migration Kit

Internet Scanner provides a command-line utility for easily moving your Unix vulnerability data and Unix scan policies to Windows NT. The migration kit executables, db2u.exe and u2db.exe, are located in the <Internet Scanner install directory>/Scanner6/Tools.

New Vulnerability Checks

Internet Scanner includes 65 new vulnerability checks, including more than 30 new checks for malicious backdoor programs (such as BackOrifice 2000) that attackers use to remotely control computers.

New Default Scan Policies

Internet Scanner includes many new default policies targeted towards specific operating systems, system types, or system use.

UDP Port Scanning

Internet Scanner sends a collection of UDP packets to the UDP port to check if it is active.

New Reports

In addition to many improvements to existing reports, Internet Scanner now includes Executive level reports in Italian and condensed Summary reports.